neta-elementum
Warn
Audited by Socket on Apr 3, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill's capabilities broadly match its stated purpose, and the OAuth device flow is proportionate for authenticated Elementum management. However, all sensitive actions are funneled through an unpinned `npx @latest` CLI, token handling is delegated to package code, and the skill expands trust to another skill. This looks more like a legitimate but medium-risk CLI wrapper skill than confirmed malware.
Confidence: 78%Severity: 56%
Audit Metadata